NexCRM
EN IT DE

Privacy Policy

Last updated: 2026-07-01

This Privacy Policy explains how NEX SOCIETÀ COOPERATIVA – IMPRESA SOCIALE ("Nex", "we") processes personal data in connection with your use of NexCRM ("the Service"), in accordance with Regulation (EU) 2016/679 (the "GDPR").

1. Data Controller

The data controller for account and platform-usage data is:
NEX SOCIETÀ COOPERATIVA – IMPRESA SOCIALE
Privacy contact: info@nexcoop.it

2. Two distinct roles: Controller and Processor

NexCRM is a multi-tenant CRM. Depending on the data in question, Nex acts in one of two roles:

3. Categories of data processed

4. Purposes and legal basis

5. Automated processing and artificial intelligence

The Service uses AI models (Amazon Bedrock) to automatically classify uploaded documents and extract key information, and speech-to-text services (Amazon Transcribe) to convert meeting recordings into text, which is then summarized using AI. These features are designed to assist users and do not produce decisions with significant legal effects without human involvement: outputs always remain subject to your review before being treated as final.

6. Recipients and sub-processors

Data is processed with the help of the following providers, acting as sub-processors:

Where these providers process data outside the European Economic Area, transfers are carried out under appropriate GDPR safeguards (such as Standard Contractual Clauses).

7. Data retention

Account data is retained for the duration of the contractual relationship and deleted or anonymized within a reasonable period after termination, subject to legal retention obligations. CRM data entered by an organization is retained according to that organization's instructions and retention policies. Files in the temporary upload area are automatically removed if they do not complete the archiving process.

8. Your rights

Under Articles 15-22 GDPR you have the right to access your data, request rectification or erasure, restrict processing, request data portability, object to processing, and withdraw consent where applicable. If your personal data was entered into the CRM by an organization you are not a member of, please contact that organization directly, or write to info@nexcoop.it and we will help direct your request. You also have the right to lodge a complaint with the Italian Data Protection Authority (Garante per la Protezione dei Dati Personali, www.gpdp.it) or your local supervisory authority.

9. Cookies

We use only strictly necessary technical cookies for authentication and session management. We do not use third-party profiling or marketing cookies.

10. Security

We implement appropriate technical and organizational measures, including encryption in transit (HTTPS), role- and permission-based access control, change history/audit trails, and soft deletion of records.

11. Children

The Service is intended for professional/business use and is not directed at minors.

12. Changes to this policy

We may update this Privacy Policy from time to time. We will notify registered users of any material changes.

13. Contact

For any privacy-related request: info@nexcoop.it

← Back to login